2024 CVE Vulnerabilities
39,239 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-43144 | CRITICAL | 9.8 | 2.0% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Cos... |
| CVE-2024-43132 | CRITICAL | 9.8 | 0.5% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPWeb Elite Docket... |
| CVE-2024-39658 | HIGH | 7.2 | 0.4% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Salon Booking Syst... |
| CVE-2024-39653 | CRITICAL | 9.8 | 0.5% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E4J s.R.L. VikRent... |
| CVE-2024-39638 | HIGH | 8.8 | 0.4% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Roundup WP Registr... |
| CVE-2024-39622 | CRITICAL | 9.8 | 0.5% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio Listi... |
| CVE-2024-39620 | HIGH | 8.8 | 0.4% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio Listi... |
| CVE-2024-38795 | CRITICAL | 9.8 | 0.5% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio Listi... |
| CVE-2024-38793 | HIGH | 8.8 | 1.2% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Re... |
| CVE-2024-8302 | CRITICAL | 9.8 | 0.8% | Aug 29, 2024 | A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been rated as critical... |
| CVE-2024-5057 | CRITICAL | 9.8 | 2.6% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Easy Digital Downl... |
| CVE-2024-38693 | HIGH | 7.2 | 0.4% | Aug 29, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in weDevs WP User Fro... |
| CVE-2024-1056 | MEDIUM | 5.4 | 0.2% | Aug 29, 2024 | The FunnelKit Funnel Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'allow_iframe... |
| CVE-2024-8301 | CRITICAL | 9.8 | 0.8% | Aug 29, 2024 | A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been declared as criti... |
| CVE-2024-8297 | HIGH | 7.5 | 0.5% | Aug 29, 2024 | A vulnerability was found in kitsada8621 Digital Library Management System 1.0. It has been classified as problematic. A... |
| CVE-2024-8296 | CRITICAL | 9.8 | 0.8% | Aug 29, 2024 | A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical. This issue affects the function insert of ... |
| CVE-2024-3679 | HIGH | 7.5 | 0.4% | Aug 29, 2024 | The Premium SEO Pack – WP SEO Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all version... |
| CVE-2024-2541 | HIGH | 7.5 | 0.6% | Aug 29, 2024 | The Popup Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ... |
| CVE-2024-1384 | MEDIUM | 5.4 | 0.4% | Aug 29, 2024 | The Premium Portfolio Features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-8295 | CRITICAL | 9.8 | 0.8% | Aug 29, 2024 | A vulnerability has been found in FeehiCMS up to 2.1.1 and classified as critical. This vulnerability affects the functi... |
| CVE-2024-8294 | CRITICAL | 9.8 | 0.8% | Aug 29, 2024 | A vulnerability, which was classified as critical, was found in FeehiCMS up to 2.1.1. This affects the function update o... |
| CVE-2024-7895 | MEDIUM | 5.4 | 0.4% | Aug 29, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘t... |
| CVE-2024-7856 | HIGH | 8.1 | 18.8% | Aug 29, 2024 | The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to unauthorized... |
| CVE-2024-7607 | HIGH | 8.8 | 0.5% | Aug 29, 2024 | The Front End Users plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order’ parameter in all vers... |
| CVE-2024-7606 | MEDIUM | 5.4 | 0.3% | Aug 29, 2024 | The Front End Users plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'user-search' sho... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now